CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
7220 | CVE-2003-0393 | Candidate | Privacyware Privatefirewall 3.0 does not block certain incoming packets when in "Filter Internet Traffic" or Deny Internet Traffic" modes, which allows remote attackers to identify running services via FIN scans or Xmas scans. | Assigned (20030610) | None (candidate not yet proposed) | View | |
7219 | CVE-2003-0392 | Candidate | Directory traversal vulnerability in ST FTP Service 3.0 allows remote attackers to list arbitrary directories via a CD command with a DoS drive letter argument (e.g. E:). | Assigned (20030610) | None (candidate not yet proposed) | View | |
7218 | CVE-2003-0391 | Candidate | Format string vulnerability in Magic WinMail Server 2.3, and possibly other 2.x versions, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in the PASS command. | Assigned (20030610) | None (candidate not yet proposed) | View | |
7217 | CVE-2003-0390 | Candidate | Multiple buffer overflows in Options Parsing Tool (OPT) shared library 3.18 and earlier, when used in setuid programs, may allow local users to execute arbitrary code via long command line options that are fed into macros such as opt_warn_2, as used in functions such as opt_atoi. | Assigned (20030610) | None (candidate not yet proposed) | View | |
7216 | CVE-2003-0389 | Candidate | Cross-site scripting (XSS) vulnerability in the secure redirect function of RSA ACE/Agent 5.0 for Windows, and 5.x for Web, allows remote attackers to insert arbitrary web script and possibly cause users to enter a passphrase via a GET request containing the script. | Assigned (20030609) | None (candidate not yet proposed) | View |
Page 19500 of 20943, showing 5 records out of 104715 total, starting on record 97496, ending on 97500